SpringBlade v3.2.0 and below was discovered to contain a SQL injection vulnerability via the component customSqlSegment.Referenceshttps://forum.butian.net/share/1089https://gitee.com/smallc/SpringBlade/blob/master/blade-service/blade-user/src/main/java/org/springblade/system/user/mapper/UserMapper.xmlhttps://saber.bladex.vip/#/login